Windows Server 2025
2,617 CVEs tracked. 41 of them are in CISA KEV.
This hub aggregates every CVE we track for Windows Server 2025, a product in the operating systems space. Use it to gauge the current risk picture and drill into individual advisories.
Windows Server 2025 CVEs per month
| Month | CVEs |
|---|---|
| 2024-10 | 1 |
| 2024-11 | 32 |
| 2024-12 | 58 |
| 2025-01 | 127 |
| 2025-02 | 37 |
| 2025-03 | 38 |
| 2025-04 | 83 |
| 2025-05 | 40 |
| 2025-06 | 43 |
| 2025-07 | 97 |
| 2025-08 | 68 |
| 2025-09 | 59 |
| 2025-10 | 127 |
| 2025-11 | 34 |
| 2025-12 | 36 |
| 2026-01 | 84 |
| 2026-02 | 29 |
| 2026-03 | 39 |
| 2026-04 | 122 |
| 2026-05 | 66 |
| 2026-06 | 110 |
| 2026-07 | 388 |
| 2026-08 | 214 |
| 2026-09 | 679 |
Severity
How the 2,617 CVEs score on CVSS. Severity is not exploitation: KEV is counted above.
- Critical69
- High1,875
- Medium664
- Low9
Latest CVEs
The 15 most recently published vulnerabilities affecting Windows Server 2025.
- CVE-2026-83498Windows Virtualization-Based Security (VBS) Enclave Elevation of Privilege Vulnerability7.8
- CVE-2026-83501Windows Virtualization-Based Security (VBS) Information Disclosure Vulnerability5.5
- CVE-2026-84000Microsoft Graphics Component Remote Code Execution Vulnerability7.8
- CVE-2026-83997Windows Message Queuing Remote Code Execution Vulnerability8.1
- CVE-2026-83995Windows NTFS Elevation of Privilege Vulnerability7.8
- CVE-2026-83992Windows Imaging Component Remote Code Execution Vulnerability8.8
- CVE-2026-83989Windows Services for NFS ONCRPC XDR Driver Denial of Service Vulnerability7.5
- CVE-2026-83990Microsoft Graphics Component Elevation of Privilege Vulnerability7.8
- CVE-2026-83985Windows Biometric Service Elevation of Privilege Vulnerability7.8
- CVE-2026-83983Windows Biometric Service Elevation of Privilege Vulnerability7.8
- CVE-2026-83980Windows Biometric Service Elevation of Privilege Vulnerability7.8
- CVE-2026-83987Windows Biometric Service Elevation of Privilege Vulnerability7.8
- CVE-2026-83982Windows Biometric Service Elevation of Privilege Vulnerability7.8
- CVE-2026-83978Windows Biometric Service Elevation of Privilege Vulnerability7.8
- CVE-2026-83977Windows Biometric Service Elevation of Privilege Vulnerability7.8
Product grouping is registry-driven, with AI assist and human review. How it works